SAML 2.0 traces show that SAML Response was parsed and verified successfully. However, call to 'SAML login' fails with some SUBRC different than 0. For example, the trace looks like below:
SAML20 SP (client xxx): NameID xxx (Format XXX) mapped to user ID XXX
SAML20 SP (client xxx): CALL 'SAML login' and received empty CONTEXT_REF (SY-SUBRC = 1)
SAML 2.0 traces can be captured using Security Diagnostic Tool. See the link for more information.
In a NetWeaver ABAP system where SAML 2.0 authentication is used.
- SAP Netweaver AS ABAP 7.02
- SAP Netweaver AS ABAP 7.30
- SAP Netweaver AS ABAP 7.31
- SAP Netweaver AS ABAP 7.40 and higher
Error when logging on for external ID. , KBA , BC-SEC-LGN-SML , SAML 2.0 for ABAP , BC-SEC-LGN , Authentication and SSO , Problem
About this pageThis is a preview of a SAP Knowledge Base Article. Click more to access the full version on SAP ONE Support launchpad (Login required).
Search for additional results
Visit SAP Support Portal's SAP Notes and KBA Search.